4.9
CVSSv2

CVE-2018-11563

Published: 08/07/2019 Updated: 31/01/2023
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.6 | Impact Score: 2.5 | Exploitability Score: 2.1
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

An issue exists in Open Ticket Request System (OTRS) 6.0.x up to and including 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the context of the OTRS customer panel application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

otrs otrs

debian debian linux 8.0